2026 CVE Vulnerabilities
56,949 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-16208 | MEDIUM | 5 | 0.2% | Jul 19, 2026 | A flaw has been found in django-tastypie up to 0.15.1. The affected element is the function CacheThrottle/CacheDBThrottl... |
| CVE-2026-16207 | MEDIUM | 6.3 | 0.4% | Jul 19, 2026 | A vulnerability was detected in django-tastypie up to 0.15.1. Impacted is the function ApiKeyAuthentication of the file ... |
| CVE-2026-16206 | MEDIUM | 6.3 | 0.4% | Jul 19, 2026 | A security vulnerability has been detected in django-oauth django-oauth-toolkit 3.3.0. This issue affects the function _... |
| CVE-2026-16205 | LOW | 2.4 | 0.2% | Jul 19, 2026 | A weakness has been identified in Pluck CMS up to 4.7.21. This vulnerability affects the function htmlspecialchars_decod... |
| CVE-2026-16204 | MEDIUM | 6.3 | 0.3% | Jul 19, 2026 | A security flaw has been discovered in zevorn rt-claw up to 0.2.0. This affects the function tool_run_script_execute of ... |
| CVE-2026-16203 | LOW | 3.5 | 0.2% | Jul 19, 2026 | A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. Affected by this issue is some u... |
| CVE-2026-16202 | LOW | 3.5 | 0.2% | Jul 19, 2026 | A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0. Affected by this vulnerability i... |
| CVE-2026-16201 | MEDIUM | 5.5 | 0.3% | Jul 19, 2026 | A vulnerability was found in zevorn rt-claw up to 0.2.0. Affected is the function claw_net_get/claw_net_post of the file... |
| CVE-2026-16200 | HIGH | 7.3 | 0.3% | Jul 19, 2026 | A vulnerability has been found in zevorn rt-claw up to 0.2.0. This impacts the function claw_tool_invoke of the file cla... |
| CVE-2026-16199 | MEDIUM | 6.3 | 0.2% | Jul 19, 2026 | A flaw has been found in nextlevelbuilder GoClaw up to 3.13.3-beta.3. This affects the function ExecTool.Execute of the ... |
| CVE-2026-16198 | MEDIUM | 5.6 | 0.6% | Jul 19, 2026 | A vulnerability was detected in Sipeed PicoClaw up to 0.2.9. The impacted element is an unknown function of the file web... |
| CVE-2026-16197 | MEDIUM | 6.3 | 0.4% | Jul 18, 2026 | A security vulnerability has been detected in Sipeed PicoClaw up to 0.2.9. The affected element is the function handleMe... |
| CVE-2026-16196 | MEDIUM | 6.3 | 0.4% | Jul 18, 2026 | A weakness has been identified in Sipeed PicoClaw up to 0.2.9. Impacted is the function isPrivateOrRestrictedIP of the f... |
| CVE-2026-16195 | MEDIUM | 6.3 | 0.4% | Jul 18, 2026 | A security flaw has been discovered in Sipeed PicoClaw up to 0.2.9. This issue affects the function dispatchIncoming of ... |
| CVE-2026-10130 | HIGH | 8.8 | 0.4% | Jul 18, 2026 | QueryWeaver contains an authentication bypass vulnerability that allows unauthenticated attackers to obtain valid sessio... |
| CVE-2026-16194 | MEDIUM | 6.3 | 0.3% | Jul 18, 2026 | A vulnerability was determined in zhayujie CowAgent up to 2.1.1. This affects the function WebFetch.execute of the file ... |
| CVE-2026-16156 | LOW | 3.5 | 0.2% | Jul 18, 2026 | A security flaw has been discovered in SourceCodester Class and Exam Timetabling System 1.0. This affects an unknown par... |
| CVE-2026-57857 | MEDIUM | 5.1 | 0.2% | Jul 18, 2026 | The Flow Payment plugin for WordPress (flow.cl) version 3.0.8 is vulnerable to reflected cross-site scripting on the Woo... |
| CVE-2026-16155 | LOW | 3.5 | 0.2% | Jul 18, 2026 | A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. Affected by this issue is some u... |
| CVE-2026-16154 | HIGH | 7.3 | 0.3% | Jul 18, 2026 | A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0/1.php. Affected by this vulnerabi... |
| CVE-2026-16152 | HIGH | 7.3 | 0.3% | Jul 18, 2026 | A vulnerability was found in SourceCodester Class and Exam Timetabling System 1.0. Affected is an unknown function of th... |
| CVE-2026-12228 | MEDIUM | 5.4 | 0.3% | Jul 18, 2026 | A stored cross-site scripting (XSS) vulnerability exists in the `POST /api/prompts/share` endpoint of parisneo/lollms (l... |
| CVE-2026-57848 | MEDIUM | 6.8 | 0.1% | Jul 18, 2026 | Stoat for Android exports the chat.stoat.activities.ShareTargetActivity component (reachable to any process on the devic... |
| CVE-2026-53994 | MEDIUM | 6.5 | 0.4% | Jul 18, 2026 | ProFTPD mod_sftp contains a heap-based buffer overflow reachable by an authenticated SFTP user. The fxp_packet_read() fu... |
| CVE-2026-16151 | MEDIUM | 6.3 | 0.3% | Jul 18, 2026 | A vulnerability has been found in CartoDB carto-api-client 0.5.29. This impacts the function addFilter of the file src/f... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now